Justanotherhacker.com Website Review


Make info private

Traffic and Value

Is justanotherhacker.com legit?
Website Value $93
Alexa Rank 3526892
Monthly Visits 1029
Daily Visits 35
Monthly Earnings $5.15
Daily Earnings $0.17
Click Here for Full Review

Justanotherhacker.com Server Location

Country: United States
Metropolitan Area: San Jose
Postal Reference Code: 95131
Latitude: 37.3881
Longitude: -121.8756




Summarized Content

The username and pas*word fields are vulnerable to command injection when adding a new project. There are several SQL injection vulnerabilties in the project. Accept-Encoding: gzip,deflate Accept-Language: en-US,en;q=0.8 The add a project page will request urls provided for a svn repository to ensure its a valid svn repository, an attacker can abuse this to There are both persistent and reflected xss in this project: Accept-Encoding: gzip,deflate Accept-Language: en-US,en;q=0.8 ties up a web server thread. Multiple similtaneous requests to this url will cause resource exhaustion and render the web server The svn update function executes with username and pas*word as command line arguments. In shared environments other users may be able to Upgrade to the latest version or seek an alternative as the vendor deemed some of these issue acceptable. Posted by Eldar Marcussen on Thu Sep 15 02:15:00 EDT 2016 These vulnerabilities were discovered by Eldar Wireghoul Marcussen. TCP and XOT, X.25 and XOT, data conversion, a Triple-X PAD, Host PAD, an extension for special POS protocols and even an X.25 switch all at The device has a default login of admin with the pas*word farlinx and while it does allow the pas*word to be changed the username is hardcoded in the device Apache configuration and cannot be changed. The file 'fsSaveUIPersistence.php' will write user supplied data to the file 'fsUI.xyz' with minimal changes. This can be used to place attacker controlled code on the file system. This can easily be identifiedby examining the file source:     $pFile = fopen(fsUI.xyz, w+);     if(fwrite($pFile, $strReceivedata) == false)  There are several php scripts based around log handling that are vulnerable to directory traversal. The following examples are Several command injection vulnerabilities were identified in the following scripts: sysSaveMonitorData.php, fsx25MonProxy.php, syseditdate.php, iframeupload.php and sysRestoreX25Cplt.php. The following example is provided:


Justanotherhacker Main Page Content

HTML Tag Content Informative?
Title: Just another Could be improved
Description: Not set Empty
H1: AboutIs it informative enough?
H2: JAHx181 - Piwigo lexiglot multiple vulnerabilitiesIs it informative enough?

Other Helpful Websites and Services for Justanotherhacker

Internal Pages

/projects.html:
Title

projects - Just Another Hacker

Description

If you like my projects, please say thanks or buy me a beer.bopUnique pattern generator and offset finder in perl. Based on the previous work of HDmoore, metasploit crew and Immunity.Use this to find the offset where crashes occurs in...

H1

projects

H3

Search

/advisories/index.html:
Title

Advisories - Just Another Hacker

Description

These are the vulnerabilities published by justanotherhacker.com; AdvisoryDateSubjectMedia JAHx13220130417FirePHP firefox plugin remote code execution.txt JAHx13120130212httpdx multiple access control byp .txt JAHx12220121017Symphony cms - Multiple vulnerabilities.txt JAHx12120120831Cross site scripting in PHP shell detector.txt JAHx11320110713Multiple vulnerabilities in Chyrp.txt JAHx11220110525Cross site scripting in Movable...

[censored]

H1

Advisories

H3

Search

/articles/index.html:
Title

Articles - Just Another Hacker

Description

These are the articles published by justanotherhacker.com; Creating a web application security lab part [1],[2] Game hacking - Number TheoryGame hacking - Hex editing save gamesXSS in Whois...

H1

Articles

H3

Search

/projects/dugong-fuzz.html:
Title

Dugong-fuzz - Just Another Hacker

Description

Dugong-fuzz is a simple genetic file fuzzer written in perl6 using the rakudo star early adopters release. It uses an simple genetic approach to mangle the X and Y bits or two parent files to produce a new file (a...

H1

Dugong-fuzz

H3

Search

/projects/evil-website-testing-suite.html:
Title

Evil Website Testing Suite - Just Another Hacker

Description

The Evil Website Testing Suite (ewts for short) was created to fill a gap in available testing solutions for developers of software that interacts with web pages, such as crawlers. I had been playing with the idea of making a...

H1

Evil Website Testing Suite

H3

Search

All the information about justanotherhacker.com was collected from publicly available sources

Similar domain names

jalshamoviez.winupdate-manualjustanotherhero.netjustanotherhero.todayjustanotherhipster.comjustanotherguy.xyzjustanotherguitarist.sitejustanotherground.com



CAPTCHA ERROR
Recent Comments
Ronald Kurtz about trimbodymax.com
You took 89.95 and 84.95 at the same time from my back account that i didnt authorize and was apparently hacked. I...
Ester Joseph about repassists.com
Please refund my money back I never knew this am not interested
Jose Chavez about spoosk.com
Ive been charged for no reason this is fraud and want my money back!
CHANTREA BO about sitetaskreps.com
Good morning, Can you tell me what i have been charged for on 10/8/19 amount of $61..90 I believe this could be...
Leo Wickers IV about dotabon.com
Stop charging my account or police and better business bureau will be notified
tangi muzzo about attrdte.com
I need the money tht you took from my account.. I have no idea of what this site is all about.. Please return my...
Mthetheleli Peter about feemyd.com
This is a fraud I want my money back
motonobu matsubara about talentbrainstore.com
Please refund my 100yen and 10,000yen you took fraudulently as I never purchased or joined your site. Please cancel...
Selwyn Clarke about cartplay.com
Hi I sent an e-mail to you Thursday (nz) time and as yet I have had no response the number referred to is...
Nicolash Fernandes about ddos-guard.net
Knowing how reliable and secure DDoS protection service from ddos-guard.net, I have updated my plan with them and...
John about webtermdata.com
You have charged my credit card for $54.56 please add it back and cancel my subscription card ending 6485
DMCA.com Protection Status